Skip to content

Chore/rev03 update - #57

Merged
setrofim merged 5 commits into
veraison:mainfrom
hqrui:chore/rev03-update
Sep 9, 2026
Merged

setrofim merged 5 commits into
veraison:mainfrom
hqrui:chore/rev03-update

Conversation

@hqrui

@hqrui hqrui commented Sep 2, 2026

Copy link
Copy Markdown
Contributor

Issue: #56

This PR bumps ccatoken to veraison/ccatoken@84623d4, and adds unit tests for the https://www.ietf.org/archive/id/draft-ffm-rats-cca-token-03.html profiles it supports.

Breaking changes due to bumping ccatoken:

  • When realm profile claim is included, cca-realm-public-key MUST be a COSE_Key, not a raw RAK key.
  • cca-realm-extensible-measurements MUST have exactly 4 measurements.

Note: The 'Verify' part of README-CCA.md is not working both before and after this PR. This is a separate issue, so not addressed in this PR.

Without a cca-realm-profile claim, ccatoken@84623d4 or later
would treat them as legacy realm tokens from RMM spec v1.0-EAC5
or earlier, where the cca-realm-profile claim had not been
introduced yet, and cca-realm-public key was expected to be
a raw RAK key rather than a COSE_Key.

Signed-off-by: Qirui Huang <qirui.huang@arm.com>
Signed-off-by: Qirui Huang <qirui.huang@arm.com>
Bump ccatoken to 84623d4, which adds support for
https://datatracker.ietf.org/doc/draft-ffm-rats-cca-token/03/.

BREAKING CHANGE: breaking changes are propagated from the
ccatoken bump.
 - When realm profile claim is included, cca-realm-public-key
MUST be a COSE_Key, not a raw RAK key.
 - cca-realm-extensible-measurements MUST have exactly 4 measurements.

Signed-off-by: Qirui Huang <qirui.huang@arm.com>
Add test vectors and reference json files for rev03 profiles.

Cover the rev03 tokens with the existing tests by changing
to a table-driven test format.

Signed-off-by: Qirui Huang <qirui.huang@arm.com>
Signed-off-by: Qirui Huang <qirui.huang@arm.com>
@setrofim
setrofim merged commit 7578f0e into veraison:main Sep 9, 2026
9 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants